CVE-2011-3150
- EPSS 1.04%
- Veröffentlicht 29.11.2011 17:55:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
Software Center in Ubuntu 11.10, 11.04 10.10 does not properly validate server certificates, which allows remote attackers to execute arbitrary code or obtain sensitive information via a man-in-the-middle (MITM) attack.
CVE-2011-4566
- EPSS 37.1%
- Veröffentlicht 29.11.2011 00:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer overflow in the exif_process_IFD_TAG function in exif.c in the exif extension in PHP 5.4.0beta2 on 32-bit platforms allows remote attackers to read the contents of arbitrary memory locations or cause a denial of service via a crafted offset_v...
- EPSS 92.55%
- Veröffentlicht 19.10.2011 21:55:01
- Zuletzt bearbeitet 22.04.2026 13:10:42
Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7 and 6 Update 27 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and a...
CVE-2011-2189
- EPSS 7.62%
- Veröffentlicht 10.10.2011 10:55:05
- Zuletzt bearbeitet 29.04.2026 01:13:23
net/core/net_namespace.c in the Linux kernel 2.6.32 and earlier does not properly handle a high rate of creation and cleanup of network namespaces, which makes it easier for remote attackers to cause a denial of service (memory consumption) via reque...
CVE-2011-3389
- EPSS 3.83%
- Veröffentlicht 06.09.2011 19:55:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The SSL protocol, as used in certain configurations in Microsoft Windows and Microsoft Internet Explorer, Mozilla Firefox, Google Chrome, Opera, and other products, encrypts data by using CBC mode with chained initialization vectors, which allows man...
CVE-2011-3192
- EPSS 90.46%
- Veröffentlicht 29.08.2011 15:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as e...
CVE-2011-2748
- EPSS 87.79%
- Veröffentlicht 15.08.2011 21:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
The server in ISC DHCP 3.x and 4.x before 4.2.2, 3.1-ESV before 3.1-ESV-R3, and 4.1-ESV before 4.1-ESV-R3 allows remote attackers to cause a denial of service (daemon exit) via a crafted DHCP packet.
CVE-2011-2749
- EPSS 75.34%
- Veröffentlicht 15.08.2011 21:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
The server in ISC DHCP 3.x and 4.x before 4.2.2, 3.1-ESV before 3.1-ESV-R3, and 4.1-ESV before 4.1-ESV-R3 allows remote attackers to cause a denial of service (daemon exit) via a crafted BOOTP packet.
CVE-2011-2522
- EPSS 18.2%
- Veröffentlicht 29.07.2011 20:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple cross-site request forgery (CSRF) vulnerabilities in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allow remote attackers to hijack the authentication of administrators for requests that (1) shut down daemons, (2) start...
CVE-2011-2694
- EPSS 3.13%
- Veröffentlicht 29.07.2011 20:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Cross-site scripting (XSS) vulnerability in the chg_passwd function in web/swat.c in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allows remote authenticated administrators to inject arbitrary web script or HTML via the usernam...